V-228399
CAT IIIThe Exchange Receive connector timeout must be limited.
- Ships Affected
- 1
- Total Findings
- 1
- Open
- 0
- Closed
- 1
Check Text
Review the Email Domain Security Plan (EDSP).
Determine the Connection Timeout value.
Open the Exchange Management Shell and enter the following command:
Get-ReceiveConnector | Select Name, Identity, ConnectionTimeout
For each Receive connector, if the value of "ConnectionTimeout" is not set to "00:10:00", this is a finding.
or
If "ConnectionTimeout" is set to other than "00:10:00" and has signoff and risk acceptance in the EDSP, this is not a finding.
Fix Text
Update the EDSP to specify the Connection Timeout value.
Open the Exchange Management Shell and enter the following command:
Set-ReceiveConnector -Identity <'IdentityName'> -ConnectionTimeout 00:10:00
Note: The <IdentityName> value must be in single quotes.
or
Enter the value as identified by the EDSP that has obtained a signoff with risk acceptance.
STIG Reference
- STIG
- Microsoft Exchange 2016 Mailbox Server Security Technical Implementation Guide
- Version
- 2
- Release
- 6
- Rule ID
- SV-228399r879673_rule
All Occurrences
This vulnerability appears on 1 ship(s)
| Ship | Hull # | Source File | Status | Assigned To | Scan Date | Actions |
|---|---|---|---|---|---|---|
| USNS MONTFORD POINT | T-ESD-1 | _Reviewed/MONT-MB-002/Checklist/MONT-MB-002_MSExchange2016MB_V2R6_20251023-152357.ckl | Unassigned | 2026-01-14T12:57:33.455034 | View in Context |